PT-2023-23807 · Dell · Dell Vxrail

CVE-2023-32464

·

Publicado

2023-06-23

·

Atualizado

2023-07-05

CVSS v3.1

3.3

Baixa

VetorAV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Dell VxRail versions prior to 7.0.450
Description The issue concerns an improper certificate validation, which could be exploited by a high privileged remote attacker to carry out a man-in-the-middle attack. This attack involves supplying a crafted certificate to intercept the victim's traffic, allowing the attacker to view or modify the victim's data in transit.
Recommendations For versions prior to 7.0.450, update to version 7.0.450 or later to resolve the issue.

Correção

Improper Certificate Validation

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-32464

Produtos afetados

Dell Vxrail